CVE-2024-45863 Vulnerability Details
/
/
/
CVE-2024-45863 Metadata Quick Info
CVE Published: 27/09/2024 |
CVE Updated: 27/09/2024 |
CVE Year: 2024
Source: facebook |
Vendor: Facebook |
Product: Facebook Thrift
Status : PUBLISHED
CVE-2024-45863 Description
A null-dereference vulnerability involving parsing requests specifying invalid protocols can cause the application to crash or potentially result in other undesirable effects. This issue affects Facebook Thrift from v2024.09.09.00 until v2024.09.23.00.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID:
CWE Name: NULL Pointer Dereference (CWE-476)
Source: Facebook
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).